Andrei Borzenkov wrote:
On 23.04.2023 14:54, Per Jessen wrote:
you need to assign ipv6 on your incoming interface to the 'block' zone.
You cannot "assign ipv6 to zone".
Presumably you would also assign your ipv6 addresses to the 'internal' zone.
This is becoming ridiculous. Not only you cannot "assign address to zone" (this is not how firewalld works), you will need to change configuration every time this address changes and so far you did not explain how to do it.
Andrei, calm down. Maybe I should have added a disclaimer - that I know nothing about firewalld. All I did was suggest to Carlos to read the documentation and add a couple of hints, however useless they may have been. I _did_ make suggestions on how to approach the issue of reloading the firewall when the addresses change, maybe you missed it.
Do you suggest to start every day with manually changing firewall configuration?
I suggest you quit that condescending attitude. -- Per Jessen, Zürich (18.1°C) Member, openSUSE Heroes (2016 - present) We're hiring - https://en.opensuse.org/openSUSE:Heroes